Making Log Analytics a Critical Component of Your Performance Monitoring Strategy
July 28, 2014

Vess Bakalov
SevOne

Share this

Historically, log data has been viewed by IT professionals as a valuable asset in the areas of security information and event management. And while there is no denying the benefits of log data for security teams, I suggest that organizations also consider logs as an important source for managing the performance of their infrastructures.

By definition, logs are a record of all user transactions, customer and machine behavior, security threats, fraudulent activity and more. Applications, systems, and network devices produce enormous volumes of unstructured log data. And it's this unstructured data that presents a challenge to properly categorize and mine for intelligence. But when a performance-based log analytics platform can collect and analyze unstructured log data, that data becomes a valuable resource for you to better predict, detect, troubleshoot and resolve network and data center issues.

According to Jim Frey, Vice President of Research at Enterprise Management Associates (EMA), organizations should ensure that log analytics is a key component of their overall performance monitoring strategy. To this point, research from EMA has found that there is strong and growing interest in leveraging log data across multiple infrastructure troubleshooting and operations management uses cases.

However, it's not if – but how – you incorporate log analytics into your performance monitoring process that produces the greatest results.

Many organizations today leverage log search solutions, but the reality is that it takes a lot of time, effort, and education on your part to get value from log data. For instance, you're required to manually search log data after an event takes place – this often requires knowledge of a complex and vendor-specific query language. Essentially, you have the tools to help put out the fires, but wouldn't you rather detect the smoke beforehand?

Another issue with log search solutions is that you must manually compile log reports and then correlate performance metrics to that log data – another time-intensive effort.

Based on the numerous challenges inherent with traditional log search solutions, I suggest organizations look for a performance-based log analytics platform that provides, with a single click, the ability to pivot from real-time performance metrics (such as SNMP or an IP SLA test) to the related log records, and without the time-consuming search and manual correlation typically associated with log tools. Your success with log analytics should be measured by the extent to which you can automate the extraction of actionable insight from logs at the point of ingestion. Your ability to guarantee the performance of your infrastructure depends on a more proactive approach than what we've seen from many log "analytics" tools on the market today.

Vess Bakalov is Senior Vice President, CTO and Co-Founder of SevOne.

Share this

The Latest

July 19, 2018

According to a recent survey, critical IT incidents cost the average organization upwards of $6 million per year. This infographic outlines 4 easy steps to automate incident management, reducing downtime and costs to organizations ...

July 17, 2018

The essential value resulting from data-driven processes has become progressively linked with analytics. Once considered a desired complement to intuitive decision-making, analytics has developed into a main focus of mission-critical applications across industries for any number of use cases ...

July 16, 2018

The question of SaaS-based technology over the past decade has quickly changed from "should we?" to "how soon can we?" even for the most customized and regulated of industries. This macro move toward SaaS has also encouraged a series of IT "best practices" that have potential impacts on the employee digital experience, organizational risk and ultimately, productivity ...

July 11, 2018

Optimization means improving the performance of your human and technology resources while keeping a watchful eye. To accomplish this, we must have clear, crisp visibility into the metrics relevant to the delivery of workspace applications to your end users and to the devices – the endpoints – they use to be productive ...

July 09, 2018

As tech headlines flash across my email, the CMDB, and its federated equivalent, the CMS, are almost never mentioned. And yet when I do research, dialog with IT, or support our consulting team, the CMDB/CMS many times still remains paramount ...

June 28, 2018

Given the size and complexity of today's IT networks it can be almost impossible to detect just when and where a security breach or network failure might occur. It's critical, therefore, that businesses have complete visibility over their IT networks, and any applications and services that run on those networks, in order to protect their customers' information, assure uninterrupted service delivery and, of course, comply with the GDPR ...

June 27, 2018

A new breed of solution has been born that simultaneously provides the precision of packet-based analytics with the speed of flow-based monitoring (at a reasonable cost). Here are more reasons to use these new NPM/APM analytics solutions ...

June 26, 2018

A new breed of solution has been born that simultaneously provides the precision of packet-based analytics with the speed of flow-based monitoring (at a reasonable cost). Here are 6 reasons to use these new NPM/APM analytics solutions ...

June 21, 2018

There’s no doubt that digital innovations are transforming industries, and business leaders are left with little or no choice – either embrace digital processes or suffer the consequences and get left behind ...

June 20, 2018

Looking ahead to the rest of 2018 and beyond, it seems like many of the trends that shaped 2017 are set to continue, with the key difference being in how they evolve and shift as they become mainstream. Five key factors defining the progression of the digital transformation movement are ...